L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox Consultancy Private Limited

Bengaluru

On-site

INR 7,143,000 - 9,048,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Saint Fox Consultancy Private Limited is seeking an experienced L3 Network Security Engineer to own design, deployment, and day-to-day management of enterprise network security infrastructure for clients. This senior role spans Cisco and Palo Alto environments, drives incident escalations, and mentors junior engineers.

You will work within Managed Firewall and Secure Access practices, delivering stable, documented, and audit-ready client environments while coordinating with Analysts and

Qualifications

  • 8–15 years of hands-on experience in network security engineering.
  • At least 4 years at L3 or senior engineer level.
  • Proven production experience with Cisco ASA/FTD firewalls.
  • Proven production experience with Palo Alto NGFW and Panorama.
  • Solid experience with Cisco Catalyst/Nexus switching in enterprise environments.

Responsibilities

  • Design, deploy, and manage enterprise firewalls (Cisco ASA/FTD, Palo Alto) across multi-site environments.
  • Configure and manage Cisco Catalyst/Nexus switching, WLC, and APs; ensure network segmentation.
  • Maintain policy management with Panorama; perform rule reviews and optimization.
  • Lead incident escalation, vulnerability handling, and audits; mentor junior engineers.

Skills

Cisco ASA/FTD
Palo Alto NGFW
Panorama
Cisco Catalyst/Nexus
WLC/Access Points
Routing: OSPF/BGP/EIGRP
VPN: IPsec/GlobalProtect/AnyConnect
Wireshark
Zero Trust policies
NAC/802.1X/RADIUS

Tools

Panorama
Firepower Management Center
Cisco WLC
AnyConnect
GlobalProtect

Job description

Saint Fox Consultancy Private Limited | Full time

L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox is looking for an experienced L3 Network SecurityEngineer to own the design, deployment, and day-to-day management ofenterprise network security infrastructure for our clients. This is a seniorhands-on role. You will work across Cisco and Palo Alto environments, driveincident escalations to closure, mentor junior engineers, and contribute toarchitecture decisions.You will sit within the Managed Firewall and Secure Access practice, workingclosely with Security Analysts and Principal Engineers to keep clientenvironments stable, documented, and audit-ready.

Key Responsibilities
Firewall Operations
  • Design, deploy, and manage Cisco ASA and Firepower Threat Defense (FTD)firewalls in enterprise and multi-site environments.
  • Operate and tune Palo Alto Networks next-generation firewalls includingpolicy management, App-ID, User-ID, and threat prevention profiles.
  • Manage Palo Alto Panorama for centralised policy and device managementacross multiple firewalls.
  • Perform rule-base reviews, clean-up, and optimisation on a scheduled basisto reduce attack surface and policy drift.
  • Respond to and resolve L3 firewall incidents and escalations within agreedSLA windows.
Network Infrastructure
  • Configure and manage Cisco Catalyst and Nexus switching platformsincluding VLANs, STP, VPC, and QoS.
  • Administer Cisco Wireless infrastructure including WLC (Wireless LANControllers) and Cisco Access Points across campus and branchenvironments.
  • Troubleshoot complex Layer 2 and Layer 3 network issues from physicalthrough to application layer.
  • Maintain and enforce network segmentation policies aligned to Zero Trustprinciples.Routing and Connectivity
  • Configure and manage dynamic routing protocols including OSPF, BGP, andEIGRP.
  • Manage site-to-site and remote-access VPN including Cisco AnyConnect andPalo Alto Global Protect.
  • Support SD-WAN and SASE integration efforts where applicable
Operations and Governance
  • Own change management for network security changes including planning,testing, and rollback procedures.
  • Maintain accurate and current network diagrams, run books, andconfiguration documentation.
  • Participate in vulnerability and patch management cycles for networkdevices.
  • Support internal and external audits by providing evidence and configurationreviews.
  • Provide mentoring and technical guidance to L1 and L2 engineers
Requirements
Experience
  • 8 to 15 years of hands-on experience in network security engineering.
  • At least 4 years working at L3 or equivalent senior engineer level.
  • Demonstrated production experience with Cisco ASA and/or FTD firewalls.
  • Demonstrated production experience with Palo Alto Networks NGFW andPanorama.
  • Solid experience with Cisco Catalyst and Nexus switching in enterpriseenvironments.
  • Working experience with Cisco WLC and enterprise access pointmanagement.
Technical Skills
  • Cisco Firewall: ACLs, NAT, VPN, HA, and Firepower management centre.
  • Cisco Switching: VLAN, STP, RSTP, VPC/vPC, port-channel, QoS, and SPAN.
  • Cisco Wireless: WLC management, AP provisioning, SSID design, RF planningbasics, and client troubleshooting.
  • Palo Alto: Security policies, NAT, decryption, URL filtering, Wildfire, Panorama,and HA configuration.
  • Routing: OSPF, BGP, EIGRP, PBR, and route redistribution.
  • VPN: IPsec, SSL-VPN, GlobalProtect, and AnyConnect.
  • Packet analysis using Wireshark or equivalent.
  • Working knowledge of NAC, 802.1X, and RADIUS.
Preferred Certifications
  • Required: CCNP Security or CCNP Enterprise (current and valid).
  • Preferred: Palo Alto PCNSE (or working towards it).
  • Preferred: Cisco CCIE Security or equivalent advanced certification.
Soft Skills
  • Clear communicator. You can explain a complex network problem to a non-technical stakeholder without burying them in acronyms.
  • Methodical under pressure. You follow process during incidents anddocument what happened after ward.
  • Self-directed. You manage your workload, flag blockers early, and do not waitto be chased.
  • Collaborative. You work well with security analysts, project managers, andclient technical teams
Why Join St. Fox
  • Opportunity to work onsite at a leading customer location, enabling directengagement with innovative projects.
  • A collaborative and dynamic working environment focused on continuouslearning and professional growth.
  • Exposure to advanced technologies and ongoing training opportunities.
  • Clear career progression pathways supported by experienced leadership.
What We Offer
  • An opportunity to work in a rapidly growing company with potential forpersonal and professional growth.
  • Opportunity to work in a rapidly growing company with potential forpersonal and professional growth.
  • A collaborative and inclusive culture that values each employee’scontribution towards our goals.
  • Competitive compensation package including attractive bonus structuresand benefits

St. Fox is an Equal Opportunity Employer. We celebrate diversity and arecommitted to creating an inclusive environment for all employees.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L3 Network Security Engineer (Managed Firewall | Network Infrastructure)
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox Consultancy (P) Ltd. • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Onsite at client location
Professional growth
Training opportunities
+1
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox Consultancy Private Limited • Pune District

On-site
INR 900,000 - 1,500,000
Onsite client location
Competitive compensation
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)
L3 Network Security Engineer (Managed Firewall | Network Infrastructure)

Saint Fox • Bengaluru

On-site
INR 1,800,000 - 3,800,000
Competitive salary and benefits
Growth opportunities
Exposure to cutting-edge technologies
+1
Network Security Engineer L3
Network Security Engineer L3

Saint Fox Consultancy Private Limited • Bengaluru, Pune District

On-site
INR 1,800,000 - 2,600,000
Bonus structures
Onsite work
Network and Security Engineer
Network and Security Engineer

Cigres Technologies Private Limited • Bengaluru

On-site
INR 800,000 - 1,200,000
Network Security Engineer L1
Network Security Engineer L1

St. Fox • Dadri

On-site
INR 480,000 - 720,000
Competitive salary and benefits package
Opportunities for professional growth
Exposure to cutting-edge technologies
+1
AM- Network Engineer -L3
AM- Network Engineer -L3

TP • Thane, Gurugram District

On-site
INR 1,500,000 - 2,100,000
Network Security Engineer L2
Network Security Engineer L2

Saint Fox Consultancy Private Limited • Dadri

On-site
INR 1,200,000 - 2,200,000
Solutions Architect
Solutions Architect

Saint Fox Consultancy (P) Ltd. • Pune District

On-site
INR 1,000,000 - 1,500,000
Competitive salary and benefits package
Opportunities for professional growth
Exposure to cutting-edge technologies
+1
Cyber Security - Security Engineer III
Cyber Security - Security Engineer III

Interactive Brokers • Mumbai

Hybrid
INR 1,400,000 - 2,000,000
Competitive salary package.
Performance based annual bonus.
Hybrid working model (3 days office/week).
+3